Skip to content

Am0rphous/Malware

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 
ย 

Repository files navigation

Malware found in the wild

  • EICAR test file - A text file you can test your antivirus with, that doesn't do anything malicious.
X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*

Downloading can be done with proxychains and tor. Downloading multiple files can be done like this:

  • on MacOS:
#!/bin/bash
#collect IPs from logs and put them in a matrix
virusMatrix=(
  1.94.127.91:51527/Mozi.a
  42.224.2.177:56263/Mozi.a
  42.230.87.202:33296/Mozi.m
  58.249.22.48:46809/Mozi.m
  59.94.195.181:46026/Mozi.a
  61.3.155.131:43576/Mozi.a
)
for url in "${virusMatrix[@]}"
  do
    :
    proxychains4 wget $url
done

Some resources

  • Aurora - Malware similarity platform with modularity in mind.
  • DetectionLab - Automate the creation of a lab environment complete with security tooling and logging best practices.
  • DomainClassifier - DomainClassifier is a Python (2/3) library to extract and classify Internet domains/hostnames/IP addresses from raw unstructured text files following their DNS existence, localization or attributes.
  • Findmal - A tool to find/download malware samples from various public repositories.
  • Malpedia - primary goal of Malpedia is to provide a resource for rapid identification and actionable context when investigating malware.
  • MalwareClassifier - Malware Classifier From Network Captures.
  • Malware-analysis-and-Reverse-engineering - "Some of my publicly available Malware analysis and Reverse engineering."
  • MWDB Feeds - A Modular MWDB Utility to Collect Fresh Malware Samples.
  • Snake - Snake is a malware storage zoo that was built out of the need for a centralised and unified storage solution for malicious samples that could seamlessly integrate into the investigation pipeline.
  • Unit42's Playbook
  • WMIPersistence.vbs

Malware resources

MacOS

Windows

  • moneta - Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs.